{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,11]],"date-time":"2026-02-11T21:32:47Z","timestamp":1770845567602,"version":"3.50.1"},"reference-count":30,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,10,5]],"date-time":"2025-10-05T00:00:00Z","timestamp":1759622400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,10,5]],"date-time":"2025-10-05T00:00:00Z","timestamp":1759622400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,10,5]]},"DOI":"10.1109\/smc58881.2025.11343710","type":"proceedings-article","created":{"date-parts":[[2026,1,28]],"date-time":"2026-01-28T20:54:44Z","timestamp":1769633684000},"page":"5534-5539","source":"Crossref","is-referenced-by-count":0,"title":["CLEAR: A Clean-Label Backdoor Attack via Representation-Guided Trigger Embedding"],"prefix":"10.1109","author":[{"given":"Zhan","family":"Wu","sequence":"first","affiliation":[{"name":"Nanjing University of Science and Technology,School of Cyber Science and Engineering,Nanjing,China,210094"}]},{"given":"Haipeng","family":"Li","sequence":"additional","affiliation":[{"name":"Nanjing University of Science and Technology,School of Cyber Science and Engineering,Nanjing,China,210094"}]},{"given":"Di","family":"Wu","sequence":"additional","affiliation":[{"name":"Nanjing University of Science and Technology,School of Cyber Science and Engineering,Nanjing,China,210094"}]},{"given":"Shuchao","family":"Pang","sequence":"additional","affiliation":[{"name":"Nanjing University of Science and Technology,School of Cyber Science and Engineering,Nanjing,China,210094"}]}],"member":"263","reference":[{"key":"ref1","first-page":"1063","article-title":"dppromise: Differentially private diffusion probabilistic models for image synthesis","volume-title":"33rd USENIX Security Symposium (USENIX Security 24)","author":"Wang"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2025.3529756"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/SMC53654.2022.9945074"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/3627673.3679913"},{"key":"ref5","first-page":"2705","article-title":"Defeating {DNNBased} traffic analysis systems in {Real-Time} with blind adversarial perturbations","volume-title":"30th USENIX Security Symposium (USENIX Security 21)","author":"Nasr"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484777"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52729.2023.01183"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52733.2024.02325"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2909068"},{"key":"ref10","first-page":"33912","article-title":"Villandiffusion: A unified backdoor attack framework for diffusion models","volume":"36","author":"Chou","year":"2023","journal-title":"Advances in Neural Information Processing Systems"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v39i9.33051"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3310352"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1145\/3579642"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1007\/s11517-018-1819-y"},{"key":"ref15","author":"Turner","year":"2019","journal-title":"Label-consistent backdoor attacks"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3354209"},{"key":"ref17","first-page":"2894","article-title":"Diffusion-based adversarial sample generation for improved stealthiness and controllability","volume":"36","author":"Xue","year":"2023","journal-title":"Advances in Neural Information Processing Systems"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2023.109512"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.106"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00986"},{"key":"ref21","author":"Chen","year":"2017","journal-title":"Targeted backdoor attacks on deep learning systems using data poisoning"},{"key":"ref22","author":"Madry","year":"2017","journal-title":"Towards deep learning models resistant to adversarial attacks"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.1706.03762"},{"key":"ref24","author":"Dosovitskiy","year":"2020","journal-title":"An image is worth 16x16 words: Transformers for image recognition at scale"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1145\/3359789.3359790"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-00470-5_13"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00031"},{"key":"ref28","author":"Goodfellow","year":"2014","journal-title":"Explaining and harnessing adversarial examples"},{"issue":"4","key":"ref29","first-page":"1","article-title":"Cifar-10 (canadian institute for advanced research)","volume":"5","author":"Krizhevsky","year":"2010"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1016\/j.neunet.2012.02.016"}],"event":{"name":"2025 IEEE International Conference on Systems, Man, and Cybernetics (SMC)","location":"Vienna, Austria","start":{"date-parts":[[2025,10,5]]},"end":{"date-parts":[[2025,10,8]]}},"container-title":["2025 IEEE International Conference on Systems, Man, and Cybernetics (SMC)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11342430\/11342431\/11343710.pdf?arnumber=11343710","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,2,11]],"date-time":"2026-02-11T20:51:06Z","timestamp":1770843066000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11343710\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,10,5]]},"references-count":30,"URL":"https:\/\/doi.org\/10.1109\/smc58881.2025.11343710","relation":{},"subject":[],"published":{"date-parts":[[2025,10,5]]}}}